<< Back
CVE Number Vulnerability Product Severity Date
MS07-058 Vulnerability in RPC Could Allow Denial of Service (933729) Microsoft Windows Critical 11-10-2007

Technical Information

Brief overview of the risk:
A denial of service vulnerability exists in the remote procedure call (RPC) facility due to a failure in communicating with the NTLM security provider when performing authentication of RPC requests.
Detailed Information on the risk:
An anonymous attacker could exploit the vulnerability by sending a specially crafted RPC authentication request to a computer over the network. An attacker who successfully exploited this vulnerability could cause the computer to stop responding and automatically restart.Further information on this exploit is available at : MS07-058

Affected Software

Microsoft Windows 2000 Service Pack 4
Microsoft Windows Server 2003 Service Pack 1
Microsoft Windows Server 2003 Service Pack 2
Microsoft Windows Server 2003 with SP1 for Itanium-based Systems
Microsoft Windows Server 2003 with SP2 for Itanium-based Systems
Microsoft Windows Server 2003 x64 Edition
Microsoft Windows Server 2003 x64 Edition Service Pack 2
Microsoft Windows XP Professional x64 Edition
Microsoft Windows XP Service Pack 2
Windows Vista
Windows Vista x64 Edition